Out-of-Bounds Read Vulnerability in Adobe DNG SDK
CVE-2026-21355
5.5MEDIUM
What is CVE-2026-21355?
The Adobe DNG SDK versions 1.7.1 2410 and earlier contain an out-of-bounds read vulnerability that can potentially expose sensitive information held in memory. This vulnerability requires user interaction, as it can only be exploited when a victim opens a specially crafted file. If successfully executed, it allows attackers to access confidential data, bringing risk to user security and privacy.
Affected Version(s)
DNG SDK 0 <= 1.7.1 2410